Offensive Security Advisor
5 days ago
At Desjardins, we believe in equity, diversity and inclusion. We're committed to welcoming, respecting and valuing people for who they are as individuals, learning from their differences, embracing their uniqueness, and providing a positive workplace for all. At Desjardins, we have zero tolerance for discrimination of any kind. We believe our teams should reflect the diversity of the members, clients and communities we serve.
Job Level
NV-11
Do technical challenges keep you awake at night? Do you want to constantly learn, analyze, understand things and leverage your experience, knowledge and expertise?
Our Red Team needs an operator to perform adversary simulation and threat monitoring activities at Desjardins. In this role, you work with high caliber cyber defence and insider threat teams during activities requiring you to use modern and sophisticated offensive tools, in-house tradecraft and TTPs that you develop to effectively do your job.
As an offensive security advisor, you help protect IT hardware, software and data against modification, destruction, and accidental or unauthorized disclosure. You also assist in authentication and access control by designing, administering and controlling proven security systems. You analyze IT system vulnerabilities and implement protective measures to back up, restore and secure systems.
You lead practitioners on development projects and innovative, complex strategic initiatives, including the development of IT security standards and policies. Your initiatives require extensive, in-depth knowledge of your line of work.
You make recommendations on the development and execution of projects and initiatives with a high degree of operational and conceptual complexity. You use your analytical skills and comprehensive, detailed knowledge of your line of business and the organization. Coordination is critical. You interact with many stakeholders working in a wide range of fields. Interpersonal savvy is therefore essential.
We're looking for a team player who can manage a project and stay organized.
General Information on the Position
Main responsibilities- Lead large-scale development projects, initiatives and activities in your specialty area that have a significant impact on the entire organization- Advise your clients and partners to help them position, plan, develop, select solutions for, execute and monitor strategic projects and initiatives under your responsibility- Develop and update policies, standards, models and programs to support your unit's strategic projects and initiatives- Identify and analyze major issues. Diagnose issues and make recommendations to decision-making bodies- Represent your unit before decision-making bodies- Represent Desjardins when making agreements with external partners and organizations- Design, develop and implement various attack chains for different levels of sophistication- Perform the research and development required to maintain and contribute to the team's tradecraft- Collaborate with the Desjardins cyber defence and insider threat teams to improve prevention, detection and response capabilities- Document and communicate detailed observations and recommendations, using plain, simple language.
Other working conditions- Workplace: Position located in Montreal, Lévis, Sherbrooke, Shawinigan, Drummondville, Saint-Lambert, Gatineau or Chicoutimi, depending on the applicant selected. The work arrangement for the position is hybrid work- Number of jobs available: 1
**Qualifications**:
- Bachelor's degree in a related field- A minimum of 8 years of relevant experience- Experience in offensive security as a Red Team operator and/or with stealth pentesting- Experience developing creative stealth tools and automating tasks in various programming languages- Experience operating with C2
Please note that other combinations of qualifications and relevant experience may be considered- For vacant positions available in Quebec, please note that knowledge of French is required
Specific knowledge-
- Knowledge of modern evasive techniques (e.g., antivirus, EDR, NDR)- General knowledge of defence mechanisms and business controls- Familiarity with the MITRE ATT&CK framework- Proficiency in advanced French
Why Desjardins's Red Team?- Possibility of flexible work location- Quarterly department meetings and in-person team activities (BBQ)- Attack simulation against formidable cyber defence teams- Work-life balance a core value- A team of 30 hackers backed by strong technical managers- Flexible training budget
Desjardins invests in training its offensive security team by offering access to internationally-renowned conferences and training programs.
As an example, here's the training list for our team over the last 12 months:
- Adversary Simulation and Red Team Tactics by MDSec- Adversary Tactics: Red Team Operations by SpecterOps- Adversary Tactics: Tradecraft Analysis by SpecterOps- Adversary Tactics: Vulnerability Research for Operators
-
Offensive Security Advisor
1 week ago
Montréal, QC HB N, Canada Desjardins Full timeDo technical challenges keep you awake at night? Do you want to constantly learn, analyze, understand things and leverage your experience, knowledge and expertise? Our Red Team needs an operator to perform adversary simulation and threat monitoring activities at Desjardins. In this role, you work with high caliber cyber-defence and insider-threat teams...
-
Senior Offensive Security Advisor
2 weeks ago
Montréal, QC HB N, Canada Desjardins Full timeAs a Senior Offensive Security Advisor, you help identify, analyze, eradicate and mitigate threats to Desjardins Group's external systems. You plan for threats based on the continuous development of offensive techniques and threat actors. You design, develop and implement offensive methods and tools, while mitigating the risks associated with their use. You...
-
Montréal, QC, Canada Desjardins Group Full timeAs a senior defensive security advisor, you help identify, analyze, eradicate and mitigate threats to Desjardins's systems, networks and applications. You analyze security incidents and determine their scope, impact and origin. You collect data from a variety of defence tools. You perform ongoing monitoring and interpret, analyze and report all events and...
-
Montréal, QC, Canada Desjardins Full timeAs a senior defensive security advisor, you help identify, analyze, eradicate and mitigate threats to Desjardins's systems, networks and applications. You analyze security incidents and determine their scope, impact and origin. You collect data from a variety of defence tools. You perform ongoing monitoring and interpret, analyze and report all events and...
-
Montréal, QC HB N, Canada Desjardins Full timeAs a senior defensive security advisor, you help identify, analyze, eradicate and mitigate threats to Desjardins's systems, networks and applications. You analyze security incidents and determine their scope, impact and origin. You collect data from a variety of defence tools. You perform ongoing monitoring and interpret, analyze and report all events and...
-
Security Advisor
3 days ago
Montréal, QC, Canada Desjardins Group Full timeAs a security advisor, you help develop and optimize security measures to align with corporate objectives by planning, implementing and overseeing best practices to strengthen Desjardins's security posture. You help develop the Desjardins Group Security Office's priorities and governance, and work on different aspects of our security practices. You're...
-
Security Architecture Advisor
1 week ago
Montréal, Canada Alithya Full time**Security Architecture Advisor** **:montreal **Montreal, Quebec, Canada****: Do you want to experience the essence of a large organization in a company with a personal touch? Come and work with us! We are looking for creative, innovative, and collaborative people like you to join our team. At the heart of Alithya’s values is the well-being of our...
-
Advisor, IT Security
3 days ago
Montréal, QC, Canada Desjardins Group Full timeAs an Advisor, IT Security, you help prevent, analyze and develop guidelines for suspicious and fraudulent transactions. You also assist with compliance, internal controls, crisis management and the security of personal information and property. You advise and assist clients and partners and develop tools, methods and processes. Your projects and initiatives...
-
Advisor, IT Security
3 days ago
Montréal, QC, Canada Desjardins Full timeAs an Advisor, IT Security, you help prevent, analyze and develop guidelines for suspicious and fraudulent transactions. You also assist with compliance, internal controls, crisis management and the security of personal information and property. You advise and assist clients and partners and develop tools, methods and processes. Your projects and initiatives...
-
Advisor, Securities
5 days ago
Montréal, Canada Desjardins Full timeAs an investment assistant, you play a hands-on role supporting the advisors by performing all the administrative and operational tasks involved in securities account management. You track client account transactions on a daily basis and resolve various administrative situations. You have to be proactive and think ahead. You have the leadership required to...